Описание
A flaw was found in svxlink's RtlTcp component. A malformed rtl_tcp greeting from a remote source triggers an unconditional exit(1) call, causing the entire svxlink daemon to terminate. A remote attacker can exploit this to achieve a complete denial of service of the repeater controller.
Отчет
svxlink is not shipped in any Red Hat Enterprise product. It is available in Fedora as a community-maintained package.
Меры по смягчению последствий
Update svxlink to version 26.05.1 or later.
Дополнительная информация
Статус:
Important
Дефект:
CWE-617
https://bugzilla.redhat.com/show_bug.cgi?id=2513798svxlink: svxlink: Denial of service via malformed rtl_tcp greeting
Связанные уязвимости
ubuntu
16 дней назад
[GHSA-38fq-mrrg-8rmr: RtlTcp: malformed greeting causes daemon exit]